Hi there, just getting into the proffesional IT career and I have no certs. I know i want to go in the infosec career path, but not sure which way to go. Can i just go straight to CEH, and SSCP etc., or do i need to start at A+, Network+ and then the security focused certs.

Before I give you some thoughts, let me ask a few questions. Do you have a degree? Do you desire to eventually move into management or do you want to stay in the trenches and become an elite geek? I know you just started your 'professional career', but how many years exp. do you have in IT? in security? Do you like the OS side (MCSE, RHCE, etc.) or more of the network side (Cisco)? Do you code?

Every path can be different. Not everyone has to start with an entry level CompTIA cert. Some can move ahead without them. Some really need it for the basic knowledge. Others need it to get into the swing of taking tech exams.

I say the first two to go for if you are starting out are A+ and Net+. Getting experience is sometimes tough without an entry level cert. Volunteering is a good way to get a foot in the door and make your start.